clerk-expo-patterns
Pass
Audited by Gen Agent Trust Hub on Sep 17, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill follows security best practices for mobile authentication. It correctly recommends using
expo-secure-storefor encrypted token storage (keychain) rather than unencryptedAsyncStorage. It also correctly identifies the need for environment variables prefixed withEXPO_PUBLIC_for client-side accessibility in Expo. The push notification section includes appropriate warnings regarding the use ofunsafeMetadataversuspublicMetadata, correctly noting that client-side updates are unverified. No malicious patterns, obfuscation, or unauthorized data exfiltration were found.
Audit Metadata